package com.dashen.general.server.controller;

import org.springframework.stereotype.Controller;
import org.springframework.web.bind.annotation.RequestMapping;
import org.springframework.web.bind.annotation.RequestMethod;
import org.springframework.web.bind.annotation.ResponseBody;

/**
 * @auther barry
 * @date 2019/1/17
 */


@Controller
public class CsrfAttackController {

    @RequestMapping(value = "/this/url/was/attacked/through/csrf/", method = RequestMethod.POST)
    @ResponseBody
    public String attack(){
        return "this url was attached through csrf, I didn't request this access";
    }
}
